Mondoo Docs

AWS service to create and manage permissions for users and groups

aws.iam MQL resource for querying AWS infrastructure with cnquery and cnspec.

AWS

AWS service to create and manage permissions for users and groups

Use MQL in cnspec shell or policy:

aws.iam
Min version: 5.15.0

Relationships

Mini Map
AWS
14 resources · 33 relationshipsClick to select, expand fields to see properties.

Fields (26)

FieldTypeDescription
accessanalyzerprivate
aws.iam.accessanalyzer-
accessAnalyzer
aws.iam.accessAnalyzerAWS IAM Access Analyzer resource (for assessing the configuration of AWS IAM Access Analyzer)
accountPasswordPolicy
dictIAM account password policy for the account
accountSummary
map[string]intIAM account summary
attachedPolicies
[]aws.iam.policyList of IAM policies attached to a user, role, or group
credentialReport
[]aws.iam.usercredentialreportentryIAM credential report
groupprivate
aws.iam.groupAWS IAM group
groups
[]aws.iam.groupList of IAM groups in the account
instanceProfileprivate
aws.iam.instanceProfileAWS IAM instance profile
instanceProfiles
[]aws.iam.instanceProfileList of IAM instance profiles in the account
loginProfileprivate
aws.iam.loginProfileAWS IAM login profile for a user
oidcProviderprivate
aws.iam.oidcProviderAWS IAM OpenID Connect (OIDC) identity provider
oidcProviders
[]aws.iam.oidcProviderList of OpenID Connect (OIDC) identity providers configured in IAM
policies
[]aws.iam.policyList of IAM policies in the account
policyprivate
aws.iam.policyAWS IAM policy
policyversionprivate
aws.iam.policyversionAWS IAM policy version
roleprivate
aws.iam.roleAWS IAM role
roles
[]aws.iam.roleList of IAM roles in the account
samlProviderprivate
aws.iam.samlProviderAWS IAM SAML 2.0 identity provider
samlProviders
[]aws.iam.samlProviderList of SAML 2.0 identity providers configured in IAM
serverCertificates
[]dictList of server certificates stored in IAM
userprivate
aws.iam.userAWS IAM user
usercredentialreportentryprivate
aws.iam.usercredentialreportentryEntry in AWS IAM credential report
users
[]aws.iam.userList of IAM users in the account
virtualmfadeviceprivate
aws.iam.virtualmfadeviceAWS IAM virtual MFA device
virtualMfaDevices
[]aws.iam.virtualmfadeviceList of virtual mfs devices associated with the account